Input validation vulnerability in Photos and Files Contest Gallery – Contact Form, Upload Form, Social Share and Voting Plugin for WordPress 21.2.8.1

The Photos and Files Contest Gallery plugin for WordPress is vulnerable to a type of cyber attack called Stored Cross-Site Scripting. This means that if the plugin is not updated to version 21.2.8.1 or higher, an unauthenticated attacker can inject malicious scripts into webpages. When a user visits one of these pages, the malicious script will run, putting the user’s data at risk. To protect yourself, make sure to update the Photos and Files Contest Gallery plugin to the latest version.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.